TaxMaverick
Tax Strategy application with AI-powered features
- •Optimized load times for Smart pick strategies
- •Usage of Next.js, Supabase, and ShadCN
Software Engineer & Cybersecurity Researcher
I'm Jhury Kevin Lastre, a passionate Software Engineer with nearly 5 years of professional experience specializing in full-stack development, DevOps, and cybersecurity research. Currently leading OWASP Cebu and pursuing advanced research in 5G Security, Embedded SIM (eSIM), and security protocol analysis in South Korea.
Career Journey
MobiSec Lab, Kookmin University
Tax Maverick Software
WebriQ Technologies
Lanex Corporation
Purple Cow - Philippines
Symph
Academic Background
Kookmin University (국민대학교)
University of San Carlos
Featured Work
Tax Strategy application with AI-powered features
GSMA Remote SIM Provisioning for Consumer Device
Docker and Kubernetes implementation of Open5GS network functions
Microplastic Identification using CNNs
GSMA Remote SIM Provisioning for Machine to Machine
CTF and Organization Website
AI Chatbot support for Kookmin University
Mobile and Web app for a Japanese moving company
Job Posting/Matcher platform for Japan
Event management system SaaS
Community & Leadership

Chapter Lead
Leading the Open Web Application Security Project (OWASP) Cebu chapter, organizing workshops, talks, and community events focused on web application security and cybersecurity awareness in the Philippines.
Teaching & Training
OWASP Cebu Summer Workshop
Taught burpsuite, wfuzz, ffuf, postman. Managed entire workshop from speakers to audiences and venue
Tech Workshop
Comprehensive workshop on building full-stack AI applications
Sprout Up Bohol
Taught Next.js, Strapi CMS, and GraphQL API architecture
iAcademy Cebu
Introduction to fundamental cybersecurity concepts and practices
Google DevFest Cebu 2023
Showcase project built using Next.js and Firebase to help workers get training and more job opportunities
Google Developer Student Clubs - San Carlos
Taught basic web development skills using the fundamental web technologies
Google Developer Student Clubs - San Carlos
Taught basic React to participants including set up, deployment, hooks, and component lifecycles
Google Developer Student Clubs - San Carlos
Taught basic Firebase set up with Vanilla JS. Taught basic cloud functions for CRUD applications in Firestore
Computer Engineering Council - San Carlos
Helped freshmen review for incoming practical exams involving DSA such as Linked Lists, Trees, and Graphs, as well as basic sorting algorithms
Computer Engineering Council - San Carlos
Taught C programming fundamentals to kids and teenagers from our partnered local community
Microsoft Learn
Taught basic Git commands and collaboration in Git. Taught industry level flows in terms of how to collaborate with a team. Taught basic CI/CD using GitHub actions and Basic testing using Jest. Taught deployment with CI/CD to AWS App Runner
Microsoft
Taught portfolio management and Resume building. Taught networking and LinkedIn profile building
Technical Expertise
First integrated security and performance analysis of M2M RSP protocol using formal verification. Uncovers critical vulnerabilities including absence of Perfect Forward Secrecy and proposes enhancements with TLS 1.3, SCP11b, and hybrid post-quantum cryptography.
This paper presents an experimental analysis of Subscription Concealed Identifier (SUCI)-based Denial of Service (DoS) attacks, their associated costs, and the stress they place on network functions in the context of 6G roaming security.
This research addresses security challenges in 5G roaming by designing a scalable 5G Standalone testbed, generating an intrusion detection dataset tailored to roaming threats, and proposing a deep learning-based intrusion detection framework for cloud-native environments.
This research introduces Zero Round Trip Time Forward Secrecy (0-RTT FS), a novel protocol extension that achieves zero round-trip performance while maintaining comprehensive security properties, including PFS and replay protection.
Formal verification of the Common Mutual Authentication protocol used in Remote SIM Provisioning using BAN Logic to ensure security properties are maintained.
Exploring the use of Explainable AI (XAI) and Small Language Models (SLMs) combined with classical machine learning techniques for anomaly detection in payment fraud scenarios.
An in-depth analysis of the Kerberos authentication protocol and its role as a precursor to modern Zero Trust security architectures.
Implementation and analysis of policy-based security mechanisms for database protection using PostgreSQL's procedural language.